Received: by 2002:a05:6a10:1d13:0:0:0:0 with SMTP id pp19csp1492369pxb; Fri, 20 Aug 2021 06:51:12 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwZgTF1LPIpZSueyuCvoZmbW9+QFdiLRae5lo7aMsHefKzw58zRxqEhTxlWtE44yyadpzDD X-Received: by 2002:a5e:961a:: with SMTP id a26mr16156843ioq.90.1629467472835; Fri, 20 Aug 2021 06:51:12 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1629467472; cv=none; d=google.com; s=arc-20160816; b=FlZ/d9q4Dz6s7GVsp5Zxkapdt73AJARBGC/X5Jlp2D/6zlR0ACrCnsmM8LjOVonS6a VJ969gaL4l+tLD15Px4kvSyE1go9Mm7vVdrojPBOUpc02KQkdidoOvZWCEp4bsXU3MTn c+XIaA09QRqxytZthSBfdwMuBf1ujbDh4ynU6c7X5bpsIJAAcvPSz108xWYWAcmoWhzK MEnPVcPzfSI8pKFClFzddWN4ztxaR/2/J0Rv3R3Zw2LtneOPLy8nxJgLiY6IBK/DRHmn BVqgktU/iZo5BYTrQUx/3dPcpqWAVJuqwBQkAzzjYN6mHy2lxK8MQwBqwuG986ndb9hO Y0Ew== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:cc:to:in-reply-to:references:date:message-id :from:subject:content-transfer-encoding:mime-version:dkim-signature; bh=jk1x7YrcX+wp0u5E5jatKkT2N43laiJSDwFpP3ELhtw=; b=zgFvCawj6TRsN0DITX1XjvI9ERUG9HnaZ/yPJB/TSEO1bPJfIqIlUIjFtjx3GMNemS uLlTczgB5xqfAaNF6rzB2cUaBmELI8LzRqT8D6usiDGsnJONyM+X36sog9y3QH8eivlh QRzulx70zsVu0tj+D1dIyX5SHza1kiV833YaBOG91OzUefjUFA/m0bkRonduOG7VgW7O SckeoQ0zErr8t4LuFtcUyzJYkVo1TNaPZPjQ2sguGGVy58lgyl0YSZYOEinWeRtbZVwq MtJ08+c3r63OWd9ZujT6nlepJDd67aSnc9tNbfxKfwgvL2JC7v2WOU8Mj7786Ibq2doH j21w== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b="M/aEImMz"; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id h15si6498689jar.80.2021.08.20.06.51.00; Fri, 20 Aug 2021 06:51:12 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=k20201202 header.b="M/aEImMz"; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S240769AbhHTNuo (ORCPT + 99 others); Fri, 20 Aug 2021 09:50:44 -0400 Received: from mail.kernel.org ([198.145.29.99]:59556 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S231202AbhHTNun (ORCPT ); Fri, 20 Aug 2021 09:50:43 -0400 Received: by mail.kernel.org (Postfix) with ESMTPS id AA1AC610CC; Fri, 20 Aug 2021 13:50:05 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=k20201202; t=1629467405; bh=VXIlAOLUdDwIKvLlDCKAKZ+eNokx5cWoRnjeefOU1GI=; h=Subject:From:Date:References:In-Reply-To:To:Cc:From; b=M/aEImMzLvQ3Eeq4XvApubmrofXtmGhyM+Thiv1fSMKviv0fnpYQHw6wfrzlPF6+8 r0tsJzqtd07znDnS8qFsYKX6e2NhERA4ZFIy1qaHBzlVSQr1qPg8YgG7C3OqmJyEi5 TSEqU12DDsilqFsAMt0Gp87kEil8924Kt5f6O0aIDAx9HKqOryaYAXVT6bG1Q+7x9F K1RhJb5Rs4ghmNfLpoh1blCxHCaqUP5/FvaWyRXzg+8HigsKeWQGOKlhj65gQzEacJ F2GLlhSvf7xyGaSIJRMXQNerICbY3EmFhM6xm3OxTQEKruSmweL0lfUnl6KiAXECFI 4KzjPaMuQrdQw== Received: from pdx-korg-docbuild-2.ci.codeaurora.org (localhost.localdomain [127.0.0.1]) by pdx-korg-docbuild-2.ci.codeaurora.org (Postfix) with ESMTP id 9CED960A6B; Fri, 20 Aug 2021 13:50:05 +0000 (UTC) Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Subject: Re: [RESEND PATCH] net: qrtr: fix another OOB Read in qrtr_endpoint_post From: patchwork-bot+netdevbpf@kernel.org Message-Id: <162946740563.29437.12714663640342835592.git-patchwork-notify@kernel.org> Date: Fri, 20 Aug 2021 13:50:05 +0000 References: <20210819195034.632132-1-butterflyhuangxx@gmail.com> In-Reply-To: <20210819195034.632132-1-butterflyhuangxx@gmail.com> To: butt3rflyh4ck Cc: mani@kernel.org, davem@davemloft.net, kuba@kernel.org, linux-arm-msm@vger.kernel.org, netdev@vger.kernel.org, linux-kernel@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Hello: This patch was applied to netdev/net.git (refs/heads/master): On Fri, 20 Aug 2021 03:50:34 +0800 you wrote: > This check was incomplete, did not consider size is 0: > > if (len != ALIGN(size, 4) + hdrlen) > goto err; > > if size from qrtr_hdr is 0, the result of ALIGN(size, 4) > will be 0, In case of len == hdrlen and size == 0 > in header this check won't fail and > > [...] Here is the summary with links: - [RESEND] net: qrtr: fix another OOB Read in qrtr_endpoint_post https://git.kernel.org/netdev/net/c/7e78c597c3eb You are awesome, thank you! -- Deet-doot-dot, I am a bot. https://korg.docs.kernel.org/patchwork/pwbot.html